CVE-2026-62380 | Netty up to 4.2.16.Final/4.1.136.Final Socks4ClientEncoder/Socks5ClientEncoder crlf injection

SecurityVulns

A vulnerability described as critical has been identified in Netty up to 4.2.16.Final/4.1.136.Final. Impacted is an unknown function of the component Socks4ClientEncoder/Socks5ClientEncoder. Such manipulation leads to crlf injection.

This vulnerability is uniquely identified as CVE-2026-62380. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More